summaryrefslogtreecommitdiff
path: root/lib/libcrypto
AgeCommit message (Collapse)Author
2016-12-26add eight missing functions found in OpenSSL doc/man3/d2i_X509.podIngo Schwarze
2016-12-26Basic cleanup:Ingo Schwarze
Simplify one-line description. List each function with the correct header file. Use the same parameter names as in ASN1_item_d2i(3). Point to ASN1_item_d2i(3) for details. Sort the text. Add some useful cross references.
2016-12-26describe what happens for val_out == NULL and for der_out == NULLIngo Schwarze
2016-12-25Consistently mark up various ASN.1 type names defined in standardsIngo Schwarze
related to X.509 with .Vt such that they can be searched for.
2016-12-25Add missing functions d2i_PublicKey(3) and i2d_PublicKey(3)Ingo Schwarze
found in OpenSSL doc/man3/d2i_X509.pod. Simplify one-line description. Use the same parameter names as in ASN1_item_d2i(3). Point to ASN1_item_d2i(3) for details. Add a STANDRADS reference regarding PKCS#8 PrivateKeyInfo. Mention d2i_PrivateKey_bio(3) and d2i_PrivateKey_fp(3) in the DESCRIPTION and below RETURN VALUES. Add some missing markup and tweak some wording. Add some cross references.
2016-12-25Correct the DESCRIPTION of ECParameters_dup(3).Ingo Schwarze
Clarify requirements for o2i_ECPublicKey(3). Add STANDARDS references for d2i_ECPrivateKey(3) and d2i_EC_PUBKEY(3). Trim some excessive cross references that are only tangentially related and add some more relevant ones instead.
2016-12-25Basic cleanup to prepare for content improvements:Ingo Schwarze
Use the same parameter names as in ASN1_item_d2i(3). Point to ASN1_item_d2i(3) for details. Delete lots of rendundant text. While here, add ten missing functions found in OpenSSL doc/man3/d2i_X509.pod and fix errors in the prototypes of i2d_ECPKParameters_bio(3) and i2d_ECPKParameters_fp(3).
2016-12-25Clarify what DSAparams_dup(3) does.Ingo Schwarze
Add STANDARDS references. Add cross references to manual pages documenting conversion functions that are used by the functions documented here. Mark up the names of custom ASN.1 datatypes that are defined in standards with .Vt, allowing to search for them. Do not mark up basic ASN.1 data types. They stand out by being ALL CAPS anyway, and searching for them would be pointless.
2016-12-24First example of how to fix the d2i_*() manuals:Ingo Schwarze
- add four missing functions found in OpenSSL doc/man3/d2i_X509.pod - simplify .Nd - drop needless extra include line - use the same parameter names as in ASN1_item_d2i(3) - point to ASN1_item_d2i(3) for details - sort the text and simplify the wording More work is needed on STANDARDS references.
2016-12-24Very carefully tweak OpenSSL doc/man3/d2i_X509.pod and create a newIngo Schwarze
ASN1_item_d2i(3) manual page from it. Enough text remains to keep Stephen Henson's Copyright. The eight functions documented in this new page are listed in <openssl/asn1.h> and in Symbols.list, so they are public even though OpenSSL does not document them. They are very important because hundreds of documented, much-used public interface functions are trivial wrappers around them, sharing their complicated semantics and their copious CAVEATS and BUGS. The plan is for the many pages documenting the wrappers to become very concise, to focus on the few type-dependent specifics, and to point to this new page for the details of the semantics, for the CAVEATS, and for the BUGS. While here, write a companion page ASN1_item_new(3) from scratch. The user interface described in that page scares the hell out of me, and i think people writing code to handle ASN.1 ought to be aware of that dangerous user interface design, or they will sooner or later get trapped.
2016-12-24minor fixes;Jason McIntyre
2016-12-24sprinkle some cross references to newly written x509v3 manual pagesIngo Schwarze
2016-12-24Write new SXNET_new(3) manual page from scratch. All four functionsIngo Schwarze
are listed in <openssl/x509v3.h> and in OpenSSL doc/man3/X509_dup.pod. OpenSSL documentation specifies the wrong header file. I consider the quotation from http://www-03.ibm.com/security/library/wp_pki0730.shtml fair use because (1) it is a very brief extract from a long text, (2) no other source of information is available, (3) it is quoted for the purpose of education and research, (4) republishing happens in a not-for-profit context. I'm not including the URI into the manual page because large corporate websites are notorious for changing URIs during each spring cleaning.
2016-12-23Write new PKEY_USAGE_PERIOD_new(3) manual page from scratch,Ingo Schwarze
documenting the dubious RFC 3280 PrivateKeyUsagePeriod extension. Both functions are listed in <openssl/x509v3.h> and in OpenSSL doc/man3/X509_dup.pod. OpenSSL documentation specifies the wrong header file.
2016-12-23Move __BEGIN_HIDDEN_DECLS out of the middle of a function declaration.Patrick Wildt
ok jca@
2016-12-23Write RFC 3820 manual page PROXY_POLICY_new(3) from scratch.Ingo Schwarze
These four functions are listed in <openssl/x509v3.h> and in OpenSSL doc/man3/X509_dup.pod. OpenSSL documentation specifies the wrong header file.
2016-12-23Write ACCESS_DESCRIPTION_new(3) manual page from scratch.Ingo Schwarze
All four functions are listed in <openssl/x509v3.h> and in OpenSSL doc/man3/X509_dup.pod. OpenSSL documentation specifies the wrong header file.
2016-12-23Write new EXTENDED_KEY_USAGE_new(3) manual page from scratch.Ingo Schwarze
Both functions are listed in <openssl/x509v3.h> and in OpenSSL doc/man3/X509_dup.pod. OpenSSL documentation specifies the wrong header file.
2016-12-23Write new POLICYINFO_new(3) manual page from scratch; i can't say thatIngo Schwarze
i particularly like these fourteen functions, but they are all listed in <openssl/x509v3.h> and in OpenSSL doc/man3/X509_dup.pod. OpenSSL documentation specifies the wrong header file.
2016-12-23Write new NAME_CONSTRAINTS_new(3) manual page from scratch.Ingo Schwarze
These functions are listed in <openssl/x509v3.h> and in OpenSSL doc/man3/X509_dup.pod. OpenSSL documentation specifies the wrong header file.
2016-12-23Write new BASIC_CONSTRAINTS_new(3) manual from scratch, explainingIngo Schwarze
the important point of how to distinguish CA certificates from end entity certificates. Both functions are listed in <openssl/x509v3.h> and in OpenSSL doc/man3/X509_dup.pod. OpenSSL documentation specifies the wrong header file.
2016-12-23Write new DIST_POINT_new(3) manual page from scratch.Ingo Schwarze
All functions documented here are listed in <openssl/x509v3.h> and in OpenSSL doc/man3/X509_dup.pod. OpenSSL documentation specifies the wrong header file.
2016-12-23Write new AUTHORITY_KEYID_new(3) manual page from scratch.Ingo Schwarze
Both functions are listed in <openssl/x509v3.h> and in OpenSSL doc/man3/X509_dup.pod. OpenSSL documentation specifies the wrong header file.
2016-12-23Link to Peter Gutmann's classic "X.509 Style Guide".Ingo Schwarze
Thanks to otto@ for making me aware of it. If people know newer documents that are similarly readable and interesting, please speak up. I hate sending people to the STANDARDS only for more information. On the one hand, that's torture, and on the other hand, if i read Gutmann correctly, the standards sometimes provide bad advice, and often none at all.
2016-12-23Write GENERAL_NAME_new(3) manual page from scratch - as if plain X.501Ingo Schwarze
Name structures weren't already complicated enough, see X509_NAME_new(3). All these functions are listed in <openssl/x509v3.h> and in OpenSSL doc/man3/X509_dup.pod. OpenSSL documentation specifies the wrong header file.
2016-12-22no more bn_dump(3);Jason McIntyre
2016-12-22OBJ_obj2txt() should return the total amount of space requiredKinichiro Inoguchi
reported by @rhenium on GitHub ok jsing@
2016-12-22Write new manual pages PKCS12_new(3) and PKCS12_SAFEBAG_new(3) fromIngo Schwarze
scratch. All these functions are listed in <openssl/pkcs12.h> and in OpenSSL doc/man3/X509_dup.pod. As usual, OpenSSL documentation specifies the wrong header file. Note that PKCS#12 documentation is still scanty at best. For example, out of 19 public functions handling PKCS12 objects, five are now documented, and this commit documents the first two out of 24 public functions handling PKCS12_SAFEBAG objects.
2016-12-22spelling fix;Jason McIntyre
2016-12-22Write X509_SIG_new(3) manual page from scratch. Both functions areIngo Schwarze
listed in <openssl/x509.h> and in OpenSSL doc/man3/X509_dup.pod. OpenSSL documentation specifies the wrong header file.
2016-12-22reference X509_new(3) instead of x509(3)Ingo Schwarze
2016-12-22Delete the x509(3) manual page and merge what little content remainedIngo Schwarze
into X509_new(3). Add information about STANDARDS.
2016-12-22Stop installing the bn_dump(3) manual page.Ingo Schwarze
The functions documented there are no longer public.
2016-12-22Write new PKCS8_PRIV_KEY_INFO_new(3) manual page from scratch.Ingo Schwarze
Both functions are listed in <openssl/x509.h> and in OpenSSL doc/man3/X509_dup.pod. Note that OpenSSL documentation specifies the wrong header file.
2016-12-21rewrite OCSP_parse_url to be sligthly less nasty and not have one byte ↵Bob Beck
buffer overreads helpful nitpicking and ok tb@ miod@
2016-12-21Bump libcrypto/libssl/libtls majors due to libcrypto symbol removal andJoel Sing
changes to libssl non-opaque structs.
2016-12-21Explicitly export a list of symbols from libcrypto.Joel Sing
Move the "internal" BN functions from bn.h to bn_lcl.h and stop exporting the bn_* symbols. These are documented as only being intended for internal use, so why they were placed in a public header is beyond me... This hides 363 previously exported symbols, most of which exist in headers that are not installed and were never intended to be public. This also removes a few crusty old things that should have died long ago (like _ossl_old_des_read_pw). But don't worry... there are still 3451 symbols exported from the library. With input and testing from inoguchi@. ok beck@ inoguchi@
2016-12-21Remove prototypes from the public header for X509_VERIFY_PARAM functionsJoel Sing
that were recently added but not intended to be made public at this stage. Discussed with beck@
2016-12-20Delete completely useless crap and just use getaddrinfo. Fix man pageBob Beck
while we're at it. Note for the nostalgic, since "wais" is still an alias in /etc/services it will continue to work.. ok deraadt@ millert@ krw@
2016-12-19fix typo, from OpenSSLIngo Schwarze
commit 0b742f93ea7882a447f6523ac56a6f847d9f8e92 Author: Finn Hakansson <finn_hakansson@yahoo.com> Date: Thu Dec 15 12:58:19 2016 -0500
2016-12-17Define X25519_KEY_LENGTH and use it so we have fewer magic numbers.Joel Sing
ok beck@
2016-12-17Write new X509_ATTRIBUTE(3) manual page from scratch.Ingo Schwarze
Both functions are listed in <openssl/x509.h> and in OpenSSL doc/man3/X509_dup.pod. OpenSSL documentation specifies the wrong header file. The design and use of this data type feels horrific. If you understand PKCS#8 or PKCS#10 and can explain why this was designed as it is, your contribution to this manual page is welcome.
2016-12-17Write a new manual page X509_REQ_new(3) from scratch.Ingo Schwarze
These four functions are listed in <openssl/x509.h> and in OpenSSL doc/man3/X509_dup.pod. OpenSSL documentation specifies the wrong header file.
2016-12-16Document X509_REVOKED_new(3) and X509_REVOKED_free(3) and moveIngo Schwarze
X509_REVOKED_set_serialNumber(3) and X509_REVOKED_set_revocationDate(3) into this new page. Replace irrelevant cross references with relevant cross references to X509_CRL* pages.
2016-12-16Write X509_CRL_new(3) manual page from scratch. These four functionsIngo Schwarze
are listed in <openssl/x509.h> and in OpenSSL doc/man3/X509_dup.pod. Note that the OpenSSL documentation specifies the wrong header file. Link to all pages dealing with X509_CRL objects.
2016-12-16Write new X509_CINF_new(3) manual page from scratch. These functionsIngo Schwarze
are listed in <openssl/x509.h> and in OpenSSL doc/man3/X509_dup.pod. Note that the OpenSSL documentation specifies the wrong header file.
2016-12-16Document ERR_FATAL_ERROR(3), tweaked by me.Ingo Schwarze
OpenSSL commit 036ba500f7886ca2e7231549fa574ec2cdd45cef Author: Benjamin Kaduk <bkaduk@akamai.com> Date: Thu Dec 8 12:01:31 2016 -0600
2016-12-16Fix error in the description of BUF_reverse(3), tweaked by me.Ingo Schwarze
OpenSSL commit 498180de5c766f68f6d2b65454357bc263773c66 Author: Dmitry Belyavskiy <beldmit@gmail.com> Date: Mon Dec 12 15:35:09 2016 +0300
2016-12-15markup fix;Jason McIntyre
2016-12-15Add a STANDARDS section and mention the relevant section of the standard.Ingo Schwarze
Link to X509_ALGOR_new(3) because one of the functions uses X509_ALGOR. Delete a sentence about a function we don't have. Delete another sentence that says nothing new. Remove some macros that we don't normally use.